CVE-2025-32386

Helm is a tool for managing Charts. A chart archive file can be crafted in a manner where it expands to be significantly larger uncompressed than compressed (e.g., >800x difference). When Helm loads this specially crafted chart, memory can be exhausted causing the application to terminate. This issue has been resolved in Helm v3.17.3.
CVSS

No CVSS.

Configurations

No configuration.

History

09 Apr 2025, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-09 23:15

Updated : 2025-04-09 23:15


NVD link : CVE-2025-32386

Mitre link : CVE-2025-32386


JSON object : View

Products Affected

No product.

CWE
CWE-789

Memory Allocation with Excessive Size Value

CWE-770

Allocation of Resources Without Limits or Throttling